# What’s cooking for 2022

**URL:** <https://community.passbolt.com/t/what-s-cooking-for-2022/4627>\
**Category:** Announcements\
**Created:** [December 16, 2021, 5:50pm UTC](https://community.passbolt.com/t/what-s-cooking-for-2022/4627 "2021-12-16T17:50:01Z")\
**Posts on this page:** 1\
**Showing post:** 15

<div class="post-metadata">

**Author:** ![zebastiane](https://yyz1.discourse-cdn.com/flex031/user_avatar/community.passbolt.com/zebastiane/32/1123_2.png) [@zebastiane](https://community.passbolt.com/u/zebastiane)\
**Post date:** [January 24, 2022, 12:16pm UTC](https://community.passbolt.com/t/what-s-cooking-for-2022/4627/15 "2022-01-24T12:16:27Z")

</div>

Hi,

I’m really looking for the ability to enforce the complexity of generated passwords for an organization. It is a recommendation I saw in many audits.

There is already a feature request regarding users’ passphrases, but I think it should be extended to generated passwords/passphrases.

> [@As an administrator I can enforce the minimum passphrase complexity in my organization settings](https://community.passbolt.com/t/as-an-administrator-i-can-enforce-the-minimum-passphrase-complexity-in-my-organization-settings/2146):
>
> Q1. What is the problem that you are trying to solve? When a user creates its passphrase the only requirement is to use 8 o more length, but they still can use passphrase like ‘12345678’. There is an advertise saying its weak but can be ingonerd by the user. Q2 - Who is impacted? Everybody. Q3 - Why is it important and/or urgent? The passphrase is the weakiest point of security in the system and as an admin I can´t control how complex/weaky is. Q4 - What is your proposed solution? (optiona…

---

_[View the full topic](https://community.passbolt.com/t/what-s-cooking-for-2022/4627)._
